DotNetNuke contains a flaw that may allow a remote denial of service. The issue is due to the application failing to restrict width and height dimensions when creating user profiles, which may result in a consumption of disk space. This will allow a remote attacker to cause a loss of availability for the program.